Image Host Transfer Lint - EU docs IP leak

Finds images, avatars, fonts and embeds in your docs that are hotlinked from non-EU hosts, so EU visitor IPs leave the EEA before anyone consents. Runs entirely in your browser — nothing is uploaded.

Get the full version — $29 once
$29 once · one licence key per person or team seat · 7-day full refund. LG München I, 20 O 14144/19 (2022-01-20) awarded EUR 100 in damages to one visitor for one Google Fonts call on one page.
This page loads no third-party asset until you click: the checkout script is fetched only when you press the button — the same click-to-load fix this linter asks for.

Same engine as the VS Code extension, byte for byte.

Get the complete version $29

This page is the working piece. The full pack has everything below.

Names every image, font, badge and embed in your docs that sends an EU reader's IP outside the EEA - and the fix for each one.

LG Munchen I, 20 O 14144/19 (2022-01-20) awarded EUR 100 in damages to one visitor for one Google Fonts call on one page.

Buy the full version — $29

Questions people ask

What does Image Host Transfer Lint actually do?

It reads your Markdown, MDX and HTML docs line by line and flags every asset URL a reader's browser would fetch from a third party: webfonts, avatars, image hosts, script CDNs, embeds, live badges and analytics. Each finding names the host, the country the request lands in, and the concrete fix that keeps the asset on your own origin.

Who is this for?

Developers and technical writers in Germany, Austria and the Netherlands who publish a docs site out of a Markdown or HTML repository. If your handbook, changelog or product docs are public and your readers are in the EU, every hotlinked asset on those pages is a transfer you are answerable for.

Why is a free online checker not enough?

Online privacy scanners load a rendered URL. They cannot see the Markdown in your repository, the pages you have not deployed yet, or the branch under review. This runs where the text lives, so a leaking image is caught in the pull request instead of after publication, and code blocks holding examples are not counted as leaks.

What is free and what needs a licence key?

The free scan is complete on its own: open a file or folder and every leaking asset is named with host, country and fix. The paid layer is a different job - owning the evidence. It exports a workspace-wide Art. 30 transfer register as CSV and Markdown plus a self-host rewrite map, and covers a team seat.

What would this cost without the tool?

A court has already priced the failure: LG Munchen I, case 20 O 14144/19, awarded one visitor EUR 100 in damages on 20 January 2022 for a single Google Fonts call on a single page. A manual review of a docs repository is billed as privacy counsel time, page by page, and has to be repeated after every merge.

Ask about this tool

One question, answered by the person who built it. Your email only if you want the answer sent.

Want the full version?
Enter your email and we send the download link.
ENDEJAESPT

Find a tool